QID 730180

Date Published: 2022-02-21

QID 730180: Magento Multiple Security Vulnerabilities (APSB21-64)

Magento is an open-source content management system for e-commerce web sites.

Affected Versions:
Magento Open Source 2.4.2-p1 and earlier versions
Magento Open Source 2.3.7 and earlier versions

Successful exploitation may allows remote attacker to execute arbitrary code on a targeted server.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Customers are advised to refer APSB21-64 for updates and patch information.
    Software Advisories
    Advisory ID Software Component Link
    APSB21-64 URL Logo helpx.adobe.com/security/products/magento/apsb21-64.html